skip navigation

Trend Micro Deep Security

Description

Trend Micro Deep Security 8.0 provides your organization with comprehensive, mulit-layered protection from your virtual desktops to your physical, virtual and cloud servers. Look to this centrally managed solution for features included in 5 modules: intrusion detection and prevention, firewall protection, integrity monitoring, log inspection and agentless-malware.

Key Features

Accelerate Virualization, VDI, and Cloud ROI

  • Provides a lighter, more manageable way to secure VMs with the industry's first and only agentless security platform - anti-malware, intrusion prevention, and integrity monitoring - built for VMware environments.
  • Offers agentless integrity monitoring for greater virtual server security without added footprint.
  • Delivers 11X more efficient resource utilization and supports 3X the VM densities of traditional anti-malware solutions.
  • Improves the manageability of security in VMware environments by reducing the need to continually configure, update, and patch agents.
  • Secures VMware View virtual desktops while in local mode with an optional agent.
  • Coordinates protection with virtual appliance and agents to allow continuous and optimized protection of virtual servers as they move between data center and public cloud.

Maximize Operational Cost Reductions 

  • Optimizes the savings of virtualization or cloud computing by allowing greater virtual machine consolidation.
  • Reduces complexity with tight integrations to management consoles with Trend Micro, VMware, and enterprise directories.
  • Provides vulnerability protection to prioritize secure coding and cost-effective implementation of unscheduled patching.
  • Eliminates the cost of deploying multiple software clients with a centrally managed, multi-purpose software agent or virtual appliance.
  • Reduces management costs by automating repetitive and resource intensive security tasks, reducing false-positive security alerts, and enabling work-flow of security incident response.
  • Significantly reduces the complexity of managing file integrity monitoring with cloud-based event whitelisting and trusted events.

Prevent Data Breaches and Business Disruptions

  • Detects and removes malware from virtual servers in real time with minimal performance impact.
  • Blocks malware that attempts to evade detection by uninstalling or otherwise disrupting the security program.
  • Shields known and unknown vulnerabilities in web and enterprise applications and operating systems.
  • Detects and alerts suspicious or malicious activity to trigger proactive, preventative actions.
  • Leverages the web reputation capabilities of one of the largest domain-reputation databases in the world to track credibility to websites and protect users from accessing infected sites.

Achieve Cost-effective Compliance

  • Addresses major compliance requirements for PCI DSS 2.0, as well as HIPAA, NIST, and SAS 70 with one integrated and cost-effective solution.
  • Provides detailed, auditable reports that document prevented attacks and policy compliance status.
  • Reduces the preparation time and effort required to support audits.
  • Supports internal compliance initiatives to increase visibility of internal network activity.
  • Leverages proven technology certified to Common Criteria EAL 4+.

Anti-Malware Protection for VMware Environments

  • Integrates new VMware vShield Endpoint APIs to protect VMware virtual machines against viruses, spyware, trojans and other malware with zero in-guest footprint.
  • Delivers an anti-malware agent to extend protection to physical servers as well as to virtual desktops while in local mode.
  • Integrates with Trend Micro Smart Protection Network for web reputation capabilities that strengthen protection for servers and virtual desktops.
  • Optimizes security operations to avoid antivirus storms commonly seen in fully system scans and pattern updates.
  • Tamper-proofs security from sophisticated attacks in virtual environments by isolating malware from anti-malware.

Intrusion Detection and Prevention

  • Protects against known and zero-day attacks by shielding known vulnerabilities from unlimited exploits.
  • Examines all incoming and outgoing traffic for protocol deviations, policy violations, or content that signals an attack.
  • Automatically shields newly discovered vulnerabilities within hours, pushing protection to thousands of servers in minutes without a system reboot.
  • Integrates with agentless anti-malware and integrity monitoring in the same virtual appliance for increased protection.
  • Includes out-of-the-box vulnerability protection of all major operating systems and over 100 applications, including database, web, email, and FTP servers.

Bidirectional Stateful Firewall

  • Decreases the attack surface of physical, cloud, and virtual servers with fine-grained filtering, design policies per network, and location awareness for all IP-based protocols and frame types.
  • Centrally manages server firewall policy, including templates for common server types.
  • Prevents denial of service attacks and detects reconnaissance scans.

Product Requirements

Microsoft Windows:

  • XP (32-bit/64-bit)
  • XP Embedded
  • Windows 7 (32-bit/64-bit)
  • Windows Vista (32-bit/64-bit)
  • Windows Server 2003 (32-bit/64-bit)
  • Windows Server 2008 R2 (64-bit)

Linux

  • Red Hat Enterprise 5, 6 (32-bit/64-bit)*
  • SUSE Enterprise 10, 11 (32-bit/64-bit)*

Solaris

  • OS: 8, 9, 10 (64-bit SPARC0, 10 (64-bit x86)*

UNIX

  • AIX 5.3, 6.1 on IBM Power Systems**

Virtual

  • VMware: ESX/ESXi 3.x***, vSphere 4.0****, vSphere 4.1/5.0*****, View 4.5/5.0*****
  • Citrix: XenServer***
  • Microsoft: HyperV***


*Anti-malware not available
**Only Integrity Monitoring and Log Inspection available on this platform
***Protection via Deep Security Agent only
****Protection via Deep Security Agent and Virtual Appliance for Firewall, IDS/IPS and Web application protection, via Agent only for other modules
*****Protection via Deep Security Agent only for Log Inspection, via Agent and Virtual Appliance for all other modules, separate license to vShield Endpoint required

videos, p-guides and relevant content